EDR Alone Isn’t Sufficient

Dive Deep Into MDR for Endpoint With its ability to conduct threat intel comparisons, attack visualizations, and analysis of forensics data, endpoint detection and response (EDR) has become a mainstay of modern security programs. Yet EDR still doesn’t provide the caliber of highly automated functions necessary to reduce today’s attack

Read More

The Best Threat Intelligence Programs Answer these 3 Questions

Questions related to how security leaders can create the best threat intelligence programs for their organizations were recently covered in an episode of Cybersecurity America with Josh Nicholson. While there are many questions an organization should address when adopting a threat intelligence program, below are three of the many that

Read More
SOC alert prioritization

SOC Alert Prioritization & Potential Hidden Risks

Some security leaders have had SOC alert prioritization decisions made for them. Others are dealing with decisions that were made so long ago, no one remembers how they came to be. While other leaders feel certain in their decisions — e.g. “I measure our reduction in false positives.” — these

Read More

OneNote Files Used for Malware Delivery, Actors Iterate Rapidly

OneNote Files Used for Malware Delivery, Actors Iterate Rapidly A DeepSeas Summary DeepSeas has identified a new technique involving the use of OneNote files in malware delivery, though activity of this nature was observed to have accelerated among cybercriminal groups in December 2022. The use of this new filetype has

Read More
DeepSeas cyber defense finds Linux Kernel ksmbd Use-After-Free Vulnerability

Linux Kernel ksmbd Use-After-Free Vulnerability

Summary: On 22 December 2022, a potential Remote Code Execution (RCE) vulnerability in Linux Kernel versions 5.15 – 5.18.x / 5.19.x which affects Linux Kernel products with ksmbd enabled. According to Zero Day Initiative, the vulnerability could allow remote attackers to execute arbitrary code on affected installations and authentication is

Read More

Two Mighty Forces in Cyber Defense Unite to Form DeepSeas

By Chris Esemplare, CEO at DeepSeas In the cybersecurity market, DeepSeas is a new name, but it’s not a startup. Rather, it’s the unification of two mighty forces in cyber defense: Booz Allen Hamilton’s commercial Managed Threat Services business and Security On-Demand. I am excited by the potential of combining

Read More

Join our Team

21% of the DeepSeas crew are Veterans or Active Military Reservists. Join our talented crew of cyber experts.

Join Our Deep Partnership Ecosystem